Vulnerabilities > CVE-2019-0233 - Improper Preservation of Permissions vulnerability in multiple products

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
apache
oracle
CWE-281

Summary

An access permission override in Apache Struts 2.0.0 to 2.5.20 may cause a Denial of Service when performing a file upload.

Vulnerable Configurations

Part Description Count
Application
Apache
110
Application
Oracle
81

Common Weakness Enumeration (CWE)